Security Controls for Sarbanes-Oxley Section 404 It Compliance: Authorization, Authentication, and Access
-
Author:
-
Subject:
-
Published by:John Wiley & Sons Inc (US)
-
Published:07/10/2005
-
Price:$74.99
- < Buy this book >
- The Sarbanes-Oxley Act requires public companies to implement internal controls over financial reporting, operations, and assets-all of which depend heavily on installing or improving information security technology
- Offers an in-depth look at why a network must be set up with certain authentication computer science protocols (rules for computers to talk to one another) that guarantee security
- Addresses the critical concepts and skills necessary to design and create a system that integrates identity management, meta-directories, identity provisioning, authentication, and access control
- A companion book to Manager's Guide to the Sarbanes-Oxley Act (0-471-56975-5) and How to Comply with Sarbanes-Oxley Section 404 (0-471-65366-7)
Biography
Table of Contents
Acknowledgments.
Introduction.
Chapter 1: The Role of Information Technology Architecture in Information Systems Design.
Chapter 2: Understanding Basic Concepts of Privacy and Data Protection.
Chapter 3: Defining and Enforcing Architecture.
Chapter 4: Combining External Forces, Internal Influences, and IT Assets.
Chapter 5: Simplifying the Security Matrix.
Chapter 6: Developing Directory-Based Access Control Strategies.
Chapter 7: Integrating the Critical Elements.
Chapter 8: Engineering Privacy Protection into Systems and Applications.
Chapter 9: The Value of Data Inventory and Data Labeling.
Chapter 10: Putting It All Together in the Web Applications Environment.
Chapter 11: Why Federated Identity Schemes Fail.
Chapter 12: A Pathway to Universal Two-Factor Authentication.
Appendix A: WWW Resources for Authentication, Authorization, and Access Control News and Information.
Appendix B: Important Access Control and Security Terms.
Appendix C: Critical Success Factors for Controls Design.
Appendix D: Sample Policy Statements for Compulsory Access and Security Controls.
Appendix E: Documentation Examples.
Appendix F: Sample Job Description for Directory Engineer/Schema Architect.
Index.
- CCDB2 / DBA Technical Consultant - Finance company - Melbourne CBD - DB2VIC
- FTAccount Manager - Strategic Enterprise DevelopmentNSW
- FTMobile Portal Architect - .Net TechnologiesNSW
- FTSenior .Net Developer - Mobility/Portal SolutionsNSW
- FTTechnical Operations ManagerNSW
- CCDigital Business Analyst - Agile/ScrumNSW
- FTSupport Consultant - Global Vendor - $55-75,000NSW
- FTDigital Account ManagerNSW
- FTDigital Account ManagerNSW
iAsset is a channel management ecosystem that automates all major aspects of the entire sales,marketing and service process, including data tracking, integrated learning, knowledge management and product lifecycle management.
Red Light In the Control Centre Saves Hours of Chaos
First Focus’ core business is supporting customers’ networks, technical infrastructure and staff. While technical emphasis is on Microsoft server and workstation environments, many clients also run hybrid Mac, Linux and Unix environments, and First Focus has significant expertise in seamlessly integrating these technologies with Microsoft-based networks.
HiveManager Online: Less Dollars, More Sense
Today’s de facto standard controller-based Wi-Fi infrastructure model is just too complicated, too expensive, and too unreliable. It’s common for enterprise and mid-market network operators alike to get caught in a crossroads of compromises involving costs, complexity, features, and reliability.
Buying Guides
Latest Products
- Acer sees profit in Q4 after reporting losses in previous two quarters
- PhoneGap: Mobile development made easy
- Android loses market share,as Apple has exceptional quarter, Gartner says
- Activist-backed online collaboration platform due for release in March
- First look: Norton's 2012 desktop, smartphone security push









